Iran's 'Fox Kitten' Group Aids Ransomware Attacks on US Targets
ID: 23704590-6493-53a9-ad89-4d61ce2db7f4
STIX ID: report--23704590-6493-53a9-ad89-4d61ce2db7f4
Feed Name: Dark Reading
Threat Score
CISA and the FBI warn that Iran-linked Fox Kitten is actively monetizing access to victim networks—targeting VPNs and edge devices (including several recent zero-days) to sell/domain-admin access and collaborate with ransomware operators (e.g., ALPHV/BlackCat), using credential theft, web shells, lateral movement, and privilege escalation across multiple sectors.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
